> TODAY'S SUMMARY (7 articles)
Today's cybersecurity landscape highlights several critical developments. Doxx.net has secured $38 million to enhance its platform aimed at preventing AI-related misadventures. Fortra has patched significant vulnerabilities in its BoKS product that could lead to severe security breaches. GitLab also addressed a critical flaw in its AI Gateway that allowed unauthorized command execution. In terms of threats, the Antino backdoor has been linked to a China-based group conducting espionage through Microsoft 365. Additionally, a new ransomware group, N0n, has emerged, quickly making its mark in the cyber extortion realm. As the cyber landscape evolves, organizations must prioritize tracking these emerging threats and vulnerabilities.
|
// AI-powered summary generated at 12:00
The group, going by the name H0lyGh0st, has been developing and conducting cross-national malware attacks for over a year
Falling cryptocurrency prices are making it harder for threat actors to monetize their attacks
L'autorité de contrôle des ports de Tokyo MOU a révélé que ses données ont été compromises pendant des mois après avoir été victime d'une cyberattaque en juillet dernier. Cette attaque a causé des problèmes avec les données de contrôle des navires, ce qui a pu créer des difficultés pour la prise de...
Boards underestimate cyber risks from outside their organizations, report suggests
Four in five breaches down to compromised credentials, research finds
Une coopérative agricole a été victime d'une cyberattaque en juillet 2022, plusieurs de ses machines ont été infectées par un logiciel malveillant. Le procès de l'auteur présumé de ces attaques, Ilia D., s'ouvre le 11 février devant la 13e chambre correctionnelle du tribunal judiciaire de Paris. Les...
4500 transplant participants have been warned about a privacy breach affecting their healthcare information
A US debt collector has reported a breach of 1.9 million healthcare records across 650 providers
🇫🇷 Le CERT-FR met à disposition un feed MISP public regroupant des indicateurs de compromission marqués TLP:CLEAR dont la diffusion est libre. Il est accessible à l'adresse https://misp.cert.ssi.gouv.fr/feed-misp. La documentation du projet MISP, plateforme open-source de partage d'indicateurs de...
The BlackCat ransomware group has deployed a new binary to help with its intrusion efforts
The ITRC reports a decline in publicly reported breaches in H1 2022
This post is part of a series about Offensive BPF. Click the “ebpf” tag to see all related posts.
It has been a while that we posted something in the “Offensive BPF” series. But recently there have been a couple of new cool ebpf based tools, such as TripleCross, boopkit and pamspy.
So, I thought it...
APT groups targeting media outlets to gain sensitive information
The ICO found that the use of WhatsApp and other messaging services in government carries significant risks
Using ANSI Escape Sequences to Hide Malicious Terraform Code
CISA has added the bug to its Known Exploited Vulnerabilities (KEV) list
93% of companies admit failure when implementing IIoT/OT security projects
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in June:
Articles
Configure a BOVPN virtual interface in Fireware v11.11.x that uses GRE for dynamic routing to a Cisco endpoint
Geoblocking can block connections to inte...
Ransomware activity rose by 21% compared to Q1 2022, according to a new report
Researchers at Trend Micro have uncovered stealthy ransomware named 'HavanaCrypt,' which presents itself as a Google Software Update